Trojan:Win32/Comitsproc also known as Trojan/Generic.dnjo, Trojan.Generic.5867893, TrojWare.Win32.Trojan.Agent.Gen.
Malware Analysis of Trojan:Win32/Comitsproc – IL56NSE.EXE
Created files:
%WinDir%\il56nse.exe
%WinDir%\il56nse.ini
Autostart registry keys:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\il56nse: “%WinDir%\il56nse.exe”
Detected by UnHackMe:
IL56NSE.EXE
Default location: %WinDir%\IL56NSE.EXE
Dropper hash(md5): 388ef8417413feef5fb4175647ef82b6